Vulnerability Details CVE-2020-25161
The WADashboard component of WebAccess/SCADA Versions 9.0 and prior may allow an attacker to control or influence a path used in an operation on the filesystem and remotely execute code as an administrator.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 69.2%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 6.5
Products affected by CVE-2020-25161
-
cpe:2.3:a:advantech:webaccess/scada:-
-
cpe:2.3:a:advantech:webaccess/scada:7.2
-
cpe:2.3:a:advantech:webaccess/scada:8.0
-
cpe:2.3:a:advantech:webaccess/scada:8.1
-
cpe:2.3:a:advantech:webaccess/scada:8.2
-
cpe:2.3:a:advantech:webaccess/scada:8.2_20170817
-
cpe:2.3:a:advantech:webaccess/scada:8.3
-
cpe:2.3:a:advantech:webaccess/scada:8.3.2
-
cpe:2.3:a:advantech:webaccess/scada:8.4.5
-
cpe:2.3:a:advantech:webaccess/scada:9.0